Who said this? "Java is more vulnerable" is a popular factoid.
I started another thread on this in BitcoinJ, though my question was different. It was whether Oracle Inc is less trust worthy than an Open source endeavor (Open JDK)
That said, as long as there is broad enough JDK peer review on RNG, I have no problem with Java per se.